STURM, RUGER & COMPANY, INC.
bd_38f04b97485bb418 · schema v1 · pii pii-v1
Full breach record for STURM, RUGER & COMPANY, INC. →3 incidents on fileSturm, Ruger & Company, Inc. notified customers of a data breach involving its third-party vendor, Freestyle Solutions, which hosted the ShopRuger.com website. Malware on the Freestyle server captured payment card information (card number, expiration date, security code) and basic identity data (name, address, email) from September 18, 2020, to February 3, 2022. Freestyle detected the malware and notified Ruger on August 2, 2022. Ruger offered identity theft protection services.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 18, 2020
Begins
Aug 2, 2022
Discovered
Aug 17, 2022
Filed
vs. sector median
9 wks faster
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- Delaware State AGbd_1f4061fbb0cfdce22022-08-17Verified
- Maine State AGbd_9393cab4cdd552b62022-08-17Verified
- Oregon State AGbd_ebaf2f767137b90a2022-08-17Verified
- Massachusetts State AGbd_2756ba599a1cd56c2022-08-18 · +1dVerified
Show 4 more filings ↓Show fewer ↑up to 15d gap
- Indiana State AGbd_4fae1ff48d4333632022-08-18 · +1dVerified
- Washington State AGbd_ab208d75cc9435ea2022-08-18 · +1dVerified
- New Hampshire State AGbd_424fddae629065202022-08-19 · +2dVerified
- Delaware State AGbd_33d8926df2b3726e2022-08-02 · +15dVerified
Filing propagation · 9 filings · 8 states
View merged incident ↗Pattern: first filing Aug 2 (DE), last Aug 19 (NH) — a 17-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.